pocketbase-best-practices
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill is entirely educational and documentation-based, providing clear guidance on how to secure PocketBase installations.
- [SAFE]: Code examples consistently advocate for secure practices, such as using environment variables for secrets, implementing proper API access rules, and using parameter binding to prevent filter injection attacks.
- [SAFE]: Mentions of third-party resources, such as community Docker images, are accompanied by appropriate warnings and context regarding their unofficial status.
- [NO_CODE]: The skill contains no executable logic, scripts, or automated triggers. It functions purely as a knowledge base for an AI agent.
Audit Metadata